Cedric Krier discovered that python-sql, a library to write SQL queries in a pythonic way, performed insufficient sanitising which could result in SQL injection.
https://security-tracker.debian.org/tracker/DSA-5795-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-5795-1
Continue reading...

